Privacy Policy
How we collect, use, store and protect personal data — written in plain language, because a privacy policy you can't read protects nobody.
Who We Are
MonfiaConnect ("we", "us") provides specialist AWS host management, data management, AI security hardening and integration services. For the purposes of applicable data protection law, MonfiaConnect is the controller of personal data collected through this website and our sales process, and a processor of personal data contained in client systems we manage under contract.
Questions about this policy: privacy@monfiaconnect.com.
Data We Collect
| Category | Examples | Source |
|---|---|---|
| Contact data | Name, work email, phone number, company and role — provided when you enquire, book an assessment or sign an agreement. | You, directly |
| Engagement records | Correspondence, meeting notes, contracts, statements of work and billing details. | You · our records |
| Technical data | IP address, browser type and pages visited on this site, collected via server logs. | Automatic · this website |
| Client-system data | Personal data inside AWS environments we manage for clients. We process this only on the client's documented instructions. | Client systems · as processor |
We do not buy marketing lists, and we do not collect special-category data through this website.
How We Use It
We use personal data to:
- Respond to enquiries and provide the services you or your organisation have requested.
- Administer contracts, invoicing and account management.
- Operate, secure and improve this website.
- Meet legal, accounting and regulatory obligations.
- Send occasional service-relevant updates to existing clients — every message includes an unsubscribe option, and we don't do cold marketing.
Our lawful bases are: contract (delivering services), legitimate interests (responding to enquiries, securing our systems), legal obligation (tax and accounting records) and consent where we ask for it explicitly.
Sharing & Transfers
We do not sell personal data. We share it only with service providers who help us operate — hosting (AWS), email, accounting and similar — under contracts that restrict what they may do with it. Where data is transferred internationally, we rely on recognised safeguards such as adequacy decisions or standard contractual clauses.
Client-system data stays in the client's own AWS environment and region. We do not move it, copy it out or use it for any purpose beyond the engagement.
Retention & Security
We keep personal data only as long as needed: enquiry data that doesn't lead to an engagement is deleted within 12 months; contract and billing records are kept for the period required by law; server logs are rotated within 90 days.
Security controls follow the same standard we sell: least-privilege access, encryption in transit and at rest, MFA on all accounts, and audit logging. Access to personal data is limited to staff who need it for their role.
Your Rights
Depending on your jurisdiction, you may have the right to access, correct, delete or receive a copy of your personal data, to restrict or object to its processing, and to withdraw consent at any time. To exercise any of these, email privacy@monfiaconnect.com — we respond within 30 days. You also have the right to complain to your local data protection authority.
Cookies
This website uses no advertising or analytics cookies. Fonts are loaded from Google Fonts, which may log requests; no other third-party resources are embedded. If that changes, this policy and the site will be updated first.
Changes
We may update this policy as our services or the law change. The revision letter and effective date at the top of this document always reflect the current version — material changes will be flagged to active clients directly.